logo

NJP

[Announcement] ServiceNow Security Operations and Microsoft Azure Sentinel (in public beta).

Import · Nov 04, 2019 · article

Hello Community,

Some great news for Security users!

ServiceNow has developed an integration to connect with different Microsoft security technologies via Microsoft Graph to enable you to bring rich insights from Azure Sentinel and other Microsoft products into ServiceNow Security Operations.

image The Microsoft Graph Security API is an intermediary service (or broker) that provides a single programmatic interface to connect multiple security providers. Microsoft Azure Sentinel is a scalable, cloud-native, security information event management (SIEM) and security orchestration automated response (SOAR) solution.

Security alerts will be ingested into ServiceNow Security Operations to automatically create security incidents in ServiceNow’s Security Incident Response platform.

This automation of responses to alerts enables quality and consistency of security investigations and scales security incident teams.

Using built-in workflows, ServiceNow routes incidents to the correct personnel or response tools to contain, mitigate or remediate threats.

One more step that Microsoft and ServiceNow are taking together to accelerate digital transformation for enterprise and government customers.

Would you like to sign up for the ServiceNow Design Partner Program?

Learn more.

View original source

https://www.servicenow.com/community/secops-articles/announcement-servicenow-security-operations-and-microsoft-azure/ta-p/2317464